CyberSec.Space Logo
返回 CVE 浏览器

CVE-2004-0904

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.0180%
EPSS Percentile34.83th
Published2004年12月31日
Last Modified2026年4月16日

Vulnerability Description

Integer overflow in the bitmap (BMP) decoder for Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allow remote attackers to execute arbitrary code via wide bitmap files that trigger heap-based buffer overflows.

Affected Platforms (CPE)

📦
Mozilla

Firefox

= 0.8
📦
Mozilla

Firefox

= 0.9
📦
Mozilla

Firefox

= 0.9
📦
Mozilla

Firefox

= 0.9.1
📦
Mozilla

Firefox

= 0.9.2
📦
Mozilla

Firefox

= 0.9.3
📦
Mozilla

Mozilla

= 1.7
📦
Mozilla

Mozilla

= 1.7
📦
Mozilla

Mozilla

= 1.7.1
📦
Mozilla

Mozilla

= 1.7.2
📦
Mozilla

Thunderbird

= 0.6
📦
Mozilla

Thunderbird

= 0.7
📦
Mozilla

Thunderbird

= 0.7.1
📦
Mozilla

Thunderbird

= 0.7.2
📦
Mozilla

Thunderbird

= 0.7.3
📦
Netscape

Navigator

= 7.0
📦
Netscape

Navigator

= 7.0.2
📦
Netscape

Navigator

= 7.1
📦
Netscape

Navigator

= 7.2
💻
Conectiva

Linux

= 9.0
💻
Conectiva

Linux

= 10.0
💻
Redhat

Enterprise Linux

= 2.1
💻
Redhat

Enterprise Linux

= 2.1
💻
Redhat

Enterprise Linux

= 2.1
💻
Redhat

Enterprise Linux

= 2.1
💻
Redhat

Enterprise Linux

= 2.1
💻
Redhat

Enterprise Linux

= 2.1
💻
Redhat

Enterprise Linux

= 3.0
💻
Redhat

Enterprise Linux

= 3.0
💻
Redhat

Enterprise Linux

= 3.0
💻
Redhat

Enterprise Linux Desktop

= 3.0
💻
Redhat

Fedora Core

= core_1.0
💻
Redhat

Linux

= 7.3
💻
Redhat

Linux

= 7.3
💻
Redhat

Linux

= 7.3
💻
Redhat

Linux

= 9.0
💻
Redhat

Linux Advanced Workstation

= 2.1
💻
Redhat

Linux Advanced Workstation

= 2.1

References & Advisories

相关漏洞威胁